We are seeking a qualified AVP - IS Governance to lead our Information Security Governance initiatives. The successful candidate will oversee ISO 27001 maintenance activities, manage risk assessments, and coordinate with various stakeholders to ensure a robust information security framework.
Key Responsibilities :
1. ISO 27001 Management :
- Oversee maintenance activities related to ISO 27001, including ISMS, policies, procedures, and hardening documents.
- Conduct risk assessments for in-scope processes within the Bank.
- Manage the Information Security awareness program to promote security best practices.
- Perform internal audits to ensure compliance with ISO 27001 and information security policies.
2. Risk Management :
Oversee bank-wide risk assessments focusing on information security.Conduct third-party information security assessments for partners providing services to the Bank.3. Data Governance :
Review and upkeep data flow diagrams with relevant units.Assess and review data leakage policies to mitigate risks.4. Stakeholder Coordination :
Collaborate with various internal stakeholders to ensure the closure of all open IS issues and audit findings.5. Application Security :
Conduct risk assessments for banking solutions and applications being introduced.6. Technical Expertise :
Experience with data and network security tools will be considered an advantage.Support in defining security requirements for new platforms being integrated into the Bank.Qualifications :
Minimum Bachelor's degree in Engineering (preferably in Electronics, IT, or Computer Technology).At least one of the following certifications is required : ISO 27001 Lead Auditor / Implementer, CISA, CISM, CISSP.Experience :
A minimum of 8 years of experience in the information security domain, preferably within banking or financial institutions.If you possess a strong background in information security governance and a commitment to maintaining high security standards, we encourage you to apply for this key leadership role!
Skills Required
Isms, Risk Management, Iso 27001, Policies, Data Governance